Description
An issue found in OpenGoofy Hippo4j v.1.4.3 allows attackers to escalate privileges via the ThreadPoolController of the tenant Management module.
Remediation
References
https://github.com/opengoofy/hippo4j/issues/1059
Related Vulnerabilities
CVE-2023-41058 Vulnerability in npm package parse-server
CVE-2023-29518 Vulnerability in maven package org.xwiki.platform:xwiki-platform-invitation-ui
CVE-2011-1088 Vulnerability in maven package org.apache.tomcat.embed:tomcat-embed-core
CVE-2017-17068 Vulnerability in npm package auth0-js
CVE-2023-32995 Vulnerability in maven package io.jenkins.plugins:miniorange-saml-sp